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IN THE SPECIFICATION 

Standard ANSL-41 Authentication 
[00163] The standard ANSI-41 approach to producing authentication keys is depicted in 

Figure 4. The A-key [[300]] (which is the secret data known only to the mobile station 
and authentication center) and a random number called RANDSSD [[ 302 Hare processed 
using a CAVE algorithm [ [30411 to produce a 128-bit number called the Secret Shared 
Data (SSD). This operation is performed in the mobile station and the authentication 
center. The SSD consists of a 64-bit SSD-A key [ [30611 used for authentication and a 64- 
bit SSD-B key used for encryption. On each system access the mobile station generates 
an authentication response (AUTHR) [ [30811 by processing SSD-A [ [30611 , ESN [[310]], 
MIN [[312]J, authentication data [ f31411 (AUTH DATA - either IMSI_S or dialed digits 
depending on the system access type) and a random number (RAND) [ [31611 broadcast 
by the RAN in overhead messages. The processing is performed again by executing the 
CAVE algorithm [ [31811 . The mobile station transmits AUTHR [ [30811 in the system 
access and is authenticated when the authentication center (or optionally the MSC/VLR) 
independently performs the same computation and compares the result with that received. 

Using Kc as SSD-A 

[00164] The goal of authenticating a GSM subscriber in an ANSI-41 network using the 

GSM authentication credentials can be achieved by using Kc as SSD-A. The new method 
to generate the SSD-A key and AUTHR f f 40211 in accordance with an embodiment is 
shown in Figure 5. When the GSM authentication I T40411 is run at the mobile station and 
at the GSM AuC, the secret key Ki [ [41211 (known only to the subscriber's SIM and the 
GSM AuC) and the random number (GSM_RAND) [ [41411 are used to produce the 
SRES [[410]] and the encryption key Kc [[412]]. Kc r [41211 is 64 bits in length just as 
SSD-A. Therefore, Kc 1 141211 c an be substituted for the SSD-A value in the standard 
ANSI-41 computation of AUTHR using a CAVE algorithm [[416J1. 

Since the GGG gets the GSM authentication triplets (i.e., GSMJRAND, SRES 
and Kc) from the GSM AuC and the RAND [ [41811 , ESN [[420]], MIN [ [422]] and 
AUTH_DATA [ [42411 in an AuthenticationRequest INVOKE it can then use the Kc 
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value as the SSD-A value to authenticate the mobile station using the ANSI-41 method 
after the mobile station is first authenticated using GSM_RAND 1 740811 . In other words, 
the GGG and the mobile station have a common value of Kc after the mobile station 
executes the GSM authentication procedure using the value of GSM_RAND I T40811 at the 
GGG. This GSM authentication can be performed in the ANSI-41/CDMA2000 network 
using GSM signaling over IS-637 SMS transport. Once the mobile station and GGG have 
the same value of Kc, then this value can be used as SSD-A and standard ANSI-41 
methods can be used to authenticate the mobile station. The advantage of using the ANSI- 
41 authentication techniques is better signaling efficiency. Note that this approach also 
meets the goal of authenticating a mobile station in the ANSI-41 network using GSM 
credentials. 
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